Close Menu
Alpha Leaders
  • Home
  • News
  • Leadership
  • Entrepreneurs
  • Business
  • Living
  • Innovation
  • More
    • Money & Finance
    • Web Stories
    • Global
    • Press Release
What's On
The ‘Backrooms’ YouTube Videos To Watch Before Or After Seeing It

The ‘Backrooms’ YouTube Videos To Watch Before Or After Seeing It

30 May 2026
More ships are quietly slipping through Strait of Hormuz as air power scares off Iran’s attack boats

More ships are quietly slipping through Strait of Hormuz as air power scares off Iran’s attack boats

30 May 2026
Sony Is Wrong To Take ‘Destiny 2’ Support Down To Absolute Zero

Sony Is Wrong To Take ‘Destiny 2’ Support Down To Absolute Zero

30 May 2026
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram
Alpha Leaders
newsletter
  • Home
  • News
  • Leadership
  • Entrepreneurs
  • Business
  • Living
  • Innovation
  • More
    • Money & Finance
    • Web Stories
    • Global
    • Press Release
Alpha Leaders
Home » New Gmail Cyber Attack Confirmed— Encryption Key Hackers Strike
Innovation

New Gmail Cyber Attack Confirmed— Encryption Key Hackers Strike

Press RoomBy Press Room12 January 20255 Mins Read
Facebook Twitter Copy Link Pinterest LinkedIn Tumblr Email WhatsApp
New Gmail Cyber Attack Confirmed— Encryption Key Hackers Strike

Update, Jan. 12, 2025: This story, originally published Jan. 10, now includes a warning about AI-driven attacks, as well as a statement from Google regarding the latest report that highlighted Gmail usage in the Solana key theft campaign.

As the world’s biggest free email platform, Gmail often finds itself in the crosshairs as far as hack attacks are concerned. A new report has revealed how that’s the case as a new threat campaign stealing private keys to drain Solana crypto wallets is using and abusing trust in Gmail at the heart of its attack strategy. Here’s what you need to know.

Hackers Abuse Trust In Gmail To Target Crypto Keys

Not one, but two threat actors are targeting holders of Solana crypto wallets using overlapping tactics and techniques to steal private keys. The common denominator, however, is that Gmail is being used as the relay to exfiltrate the key data used to drain the wallets. The Socket Threat Research Team published their findings in a Jan. 8 report titled “Gmail For Exfiltration: Malicious npm Packages Target Solana Private Keys and Drain Victims’ Wallets.”

Threat intelligence analyst Kirill Boychenko said that Socket had found malicious node package manager packages “designed to designed to exfiltrate Solana private keys via Gmail,” using code to intercept private keys from wallet interactions and “funnel them through Gmail’s SMTP servers.” The use, or more accurately abuse, of Gmail here is important according to Boychenko. Gmail is such a well-known and trusted email service that “these exfiltration attempts are less likely to be flagged by firewalls or endpoint detection systems,” the report said, because they treat smtp.gmail.com as being legitimate traffic.

A Google spokesperson provided me with the following statement:” We’re aware of this class of attack and have account hijacking protections that detect this type of behavior (the exfiltration then forwarding combination,) and secure the victim’s account by asking users to reauthenticate. These protections work regardless of the email platform a recipient is using.”

I have reached out to Solana for a statement.

AI And Gmail Remain Fundamentally Linked In The Attacker Mindset

The threat to Gmail and other email users from AI-driven attacks has been well covered in recent months, but AI poses a broader attack surface according to Dmitry Volkov, CEO of Group-IB. “Cybercriminals continue to use AI in advanced ways,” Volkov said, “like AI jailbreaks, generating malicious code, and even seeking technical advice for cyberattacks.” Importantly, AI enables them to create scams as we have already seen and Gmail users have already experienced, as well as gather intelligence and even launch mass or highly targeted attacks, “especially through social media and online reconnaissance,” Volkov warned “which are increasingly challenging our current defense strategies.” There seems little doubt, then, that Generative AI and large language models will continue to play a key role in Cybercrime-as-a-Service threats where attackers “automate the creation and deployment of cyber threats such as phishing campaigns, exploit kits, malware, and more,” Volkov said.

Such threats can be seen in the growth of what Volkov referred to as shapeshifting and hyper-scaling fraud. “Fraudsters are finding innovative ways to exploit AI for scam automation, marketing, and distribution,” Volkov said, “deepfake technology, social engineering ploys, automated chats, emails, and phone calls are now part of advanced scams to create even more convincing fraud platforms, online affiliate programs, and fabricated identities and credentials to deceive and defraud victims.” One component of these evolving campaigns, within this scam ecosystem, is the rise of the scam call center. “Once confined to less developed regions due to limited legislative power and lax enforcement,” Volkov warned, “these centers are forming an illegal global economy.“ Crime networks’ financial schemes now either involve individuals directly, through trafficking to scamming compounds, Volkov said, or indirectly, by luring people into fraudulent activities through fake job postings, pig butchering schemes, and other scam-related content.

Hackers Leveraged Google AI-Powered Summary And Gmail Key Exfiltration

The malicious npm packages were disguised as legitimate tools, using typo-squatting to appear like one hugely popular package with 93 million downloads and, according to Socket, around a million downloads every week. “@async-mutex/mutex is a typosquat of the popular npm package async-mutex, which provides a mutual exclusion mechanism (mutex) for asynchronous JavaScript operations,” the report said. A warning was also issued by the researchers regarding the Google AI-powered summary for the malicious package, which produced a “friendly-sounding preview” that obscured the hidden malware and left developers exposed to serious risk. “When AI-driven summaries overlook embedded threats,” Boychenko said, “they may guide even cautious users toward installing harmful dependencies, endangering individual projects and the broader software supply chain.”

The researchers said that, at the time of the report publication, the malicious packages remained live and available for download but they had petitioned for their removal. “We also reported two GitHub repositories,” Boychenko said, “used by the threat actor…to amplify the malware campaign and lend legitimacy to these malicious packages.” I have reached out to GitHub for a statement. The attack code can handle multiple private keys simultaneously, the report said, allowing an attacker to compromise multiple user accounts or environments at once, with the discovered keys being exfiltrated to hacker-controlled Gmail addresses, which I won’t publish here but are accessible in the report itself.

Crypto attack crypto hack Gmail Attack Gmail cyber attack Gmail trust Socket solana Solana Hacked Solana Keys
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link

Related Articles

The ‘Backrooms’ YouTube Videos To Watch Before Or After Seeing It

The ‘Backrooms’ YouTube Videos To Watch Before Or After Seeing It

30 May 2026
Sony Is Wrong To Take ‘Destiny 2’ Support Down To Absolute Zero

Sony Is Wrong To Take ‘Destiny 2’ Support Down To Absolute Zero

30 May 2026
Netflix’s Best Returning Show Has A 96% Rotten Tomatoes Audience Score

Netflix’s Best Returning Show Has A 96% Rotten Tomatoes Audience Score

30 May 2026
SAP Says Fears Of An AI Job Apocalypse Are Overblown

SAP Says Fears Of An AI Job Apocalypse Are Overblown

30 May 2026
‘The Mandalorian And Grogu’ Is On Track To Even Underperform ‘Solo’

‘The Mandalorian And Grogu’ Is On Track To Even Underperform ‘Solo’

30 May 2026
Mauna Loa Observatory Survives Lava, Budget Cuts And Politics

Mauna Loa Observatory Survives Lava, Budget Cuts And Politics

30 May 2026
Don't Miss
Unwrap Christmas Sustainably: How To Handle Gifts You Don’t Want

Unwrap Christmas Sustainably: How To Handle Gifts You Don’t Want

By Press Room27 December 2024

Every year, millions of people unwrap Christmas gifts that they do not love, need, or…

Exclusive: DeFi platform Azura launches after raising .9 million from Initialized

Exclusive: DeFi platform Azura launches after raising $6.9 million from Initialized

22 October 2024
Sam Altman’s World Wants To Scan Your Eyes To Prove You’re Human

Sam Altman’s World Wants To Scan Your Eyes To Prove You’re Human

22 October 2024
Stay In Touch
  • Facebook
  • Twitter
  • Pinterest
  • Instagram
  • YouTube
  • Vimeo
Latest Articles
Netflix’s Best Returning Show Has A 96% Rotten Tomatoes Audience Score

Netflix’s Best Returning Show Has A 96% Rotten Tomatoes Audience Score

30 May 20261 Views
Americans hurt in Kuwait as Trump sends mixed signals on war

Americans hurt in Kuwait as Trump sends mixed signals on war

30 May 20261 Views
SAP Says Fears Of An AI Job Apocalypse Are Overblown

SAP Says Fears Of An AI Job Apocalypse Are Overblown

30 May 20261 Views
Trump’s ICE surge cost 668,000 jobs, Brookings report says

Trump’s ICE surge cost 668,000 jobs, Brookings report says

30 May 20260 Views

Recent Posts

  • The ‘Backrooms’ YouTube Videos To Watch Before Or After Seeing It
  • More ships are quietly slipping through Strait of Hormuz as air power scares off Iran’s attack boats
  • Sony Is Wrong To Take ‘Destiny 2’ Support Down To Absolute Zero
  • Warren Buffett’s son didn’t know his dad was a billionaire until his 20s—he found out from a list
  • Netflix’s Best Returning Show Has A 96% Rotten Tomatoes Audience Score

Recent Comments

No comments to show.
About Us
About Us

Alpha Leaders is your one-stop website for the latest Entrepreneurs and Leaders news and updates, follow us now to get the news that matters to you.

Facebook X (Twitter) Pinterest YouTube WhatsApp
Our Picks
The ‘Backrooms’ YouTube Videos To Watch Before Or After Seeing It

The ‘Backrooms’ YouTube Videos To Watch Before Or After Seeing It

30 May 2026
More ships are quietly slipping through Strait of Hormuz as air power scares off Iran’s attack boats

More ships are quietly slipping through Strait of Hormuz as air power scares off Iran’s attack boats

30 May 2026
Sony Is Wrong To Take ‘Destiny 2’ Support Down To Absolute Zero

Sony Is Wrong To Take ‘Destiny 2’ Support Down To Absolute Zero

30 May 2026
Most Popular
Warren Buffett’s son didn’t know his dad was a billionaire until his 20s—he found out from a list

Warren Buffett’s son didn’t know his dad was a billionaire until his 20s—he found out from a list

30 May 20262 Views
Netflix’s Best Returning Show Has A 96% Rotten Tomatoes Audience Score

Netflix’s Best Returning Show Has A 96% Rotten Tomatoes Audience Score

30 May 20261 Views
Americans hurt in Kuwait as Trump sends mixed signals on war

Americans hurt in Kuwait as Trump sends mixed signals on war

30 May 20261 Views

Archives

  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025
  • April 2025
  • March 2025
  • February 2025
  • January 2025
  • December 2024
  • November 2024
  • October 2024
  • September 2024
  • August 2024
  • July 2024
  • June 2024
  • May 2024
  • April 2024
  • March 2024
  • February 2024
  • January 2024
  • December 2023
  • March 2022
  • January 2021
  • March 2020
  • January 2020

Categories

  • Blog
  • Business
  • Entrepreneurs
  • Global
  • Innovation
  • Leadership
  • Living
  • Money & Finance
  • News
  • Press Release
© 2026 Alpha Leaders. All Rights Reserved.
  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact

Type above and press Enter to search. Press Esc to cancel.